Описание
Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-2045
- https://exchange.xforce.ibmcloud.com/vulnerabilities/58574
- http://osvdb.org/64633
- http://packetstormsecurity.org/1005-exploits/joomlafdione-lfi.txt
- http://secunia.com/advisories/39755
- http://www.exploit-db.com/exploits/12595
- http://www.securityfocus.com/bid/40166
Связанные уязвимости
nvd
больше 15 лет назад
Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.